Earthlink TotalAccess suffers from an unsafe method call that allows remote attackers to add entire individual e-mail addresses or entire domains to the spam whitelist.
You can download this advisory from the following link: https://packetstormsecurity.com/files/download/54016/earthlink-activex.txt
Source: https://packetstormsecurity.com/files/54016/earthlink-activex.txt.html

